Security Engineer II – Hybrid Cloud
Patient First is seeking a Security Engineer II to support operational security responsibilities while strengthening cloud-native security across Azure and Microsoft 365 environments. This role combines current security operations, vulnerability management, monitoring, auditing, firewall/EDR/SIEM support, and compliance reporting with future-state responsibilities for Azure Policy, Defender for Cloud, RBAC, Conditional Access, centralized logging, incident response, and cloud governance enforcement.
Las responsabilidades de este puesto incluyen, entre otras, las siguientes:
- Implementing and maintaining Microsoft Defender for Cloud, Azure Policy, security baseline controls, and cloud posture recommendations;
- Configuring and supporting RBAC, Conditional Access, privileged access, and identity governance models for Azure and Microsoft 365;
- Maintaining centralized logging, alerting, and monitoring pipelines for cloud workloads and security investigations;
- Supporting security gates in deployment workflows, including policy validation, access review, and exception management;
- Providing security input during architecture reviews, workload intake, and production go-live readiness;
- Moving security from after-the-fact review into design-time and pipeline-integrated governance;
- Standardizing cloud security baselines and reducing dependency on manual security validation;
- Translating existing security policies into Azure Policy, RBAC standards, and operational control requirements;
- Improving auditability by aligning monitoring, logging, access review, and compliance reporting to cloud workloads;
- Supporting security operations including firewall management, IDS/IPS/EDR management, security monitoring, auditing, vulnerability management, and patch- related security coordination;
- Investigating alerts, participating in incident response, and supporting threat hunting, log review, and risk analysis activities;
- Assisting with security reviews for applications, systems, third-party vendors, and hybrid cloud implementations;
- Supporting compliance activities related to HIPAA, PCI, access control, vulnerability remediation, and audit evidence;
- Communicating security risks and remediation recommendations to technical teams and business stakeholders.
Los requisitos mínimos de formación y profesionales incluyen, entre otros, los siguientes
- El empleado debe ser mayor de 18 años;
- High school diploma or equivalent;
- At least three years of experience in cybersecurity, security operations, cloud security, or hybrid infrastructure security roles;
- Experience with Azure security services, Microsoft Defender for Cloud, Sentinel or SIEM tools, identity, RBAC, and access control concepts;
- Understanding of vulnerability management, logging, alerting, incident response, and compliance evidence expectations;
- Working knowledge of hybrid environments including Windows/Linux systems, networking, firewalls, SaaS/PaaS/IaaS security, and Microsoft 365;
- Ability to communicate risk, remediation options, and control requirements clearly across technical and non-technical audiences;
- Experience in regulated, or compliance-driven environments; healthcare experience preferred;
- Knowledge of NIST, HIPAA, PCI, CIS, COBIT, or similar security frameworks;
- Azure Security Engineer Associate, CISSP, or comparable security certification;
- Experience with SIEM/SOAR, DLP, EDR, vulnerability scanning, and cloud security posture management tools.
Salary Range: $125,000 – $150,000 annually, depending on experience.
Benefits and Other Compensation:
• Health, Dental and Vision insurance for employees and dependents
• Disability, Life and Long Term care insurance
• Employee Assistance Program, Flexible Spending accounts, 401(k) Retirement Plan (with employer match)
• Paid Annual Leave, Volunteer Time Off Pay, Bereavement Leave, Emergency Leave Bank
• Holiday Pay
• Discounted medical treatment at any Patient First location for employees and immediate family
• Bonuses include:
– Recruitment bonus